> ## Content Index
> Fetch the complete content index at: https://www.cybersecstats.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# CyberSecStats #18 - Monthly statistics round-up May/June 2025
- URL: https://www.cybersecstats.com/cybersecstats-18-monthly-statistics-round-up-may-june-2025/
- Published: 2025-06-23T15:58:20.000Z
- Updated: 2026-01-21T15:03:40.000Z
- Author: Laura M

Hello! Laura from CyberSecStats here with a monthly email of 100+ cybersecurity statistics pulled from vendor reports and research papers.

All of the statistics and data points below were published by cybersecurity vendors in the past month (May/June 2025) and include direct links back to their publisher/source.

## Cybersecurity incident experiences

1. 88% of CIOs faced cybersecurity incidents in the last 12 months. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
2. 43% of CIOs suffered multiple breaches. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
3. 78% of CIOs say breach frequency is steady or rising. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
4. 76% of CISOs reported major impacts from breaches. 36% faced downtime, 30% had data exposed, and 28% incurred financial loss. ([Pentera](https://pentera.io/resources/reports/global-state-of-pentesting-2025-survey-report/?ref=cybersecstats.com))
5. 75% of incidents involve unmanaged assets. ([Trend Micro](https://www.trendmicro.com/explore/aichangingcyberrisk?ref=cybersecstats.com))

## Ransomware trend data 

1. The number of unique ransomware groups that reported a victim has risen from 41 in 2023 to 77 in 2024, an increase of nearly 88%.
2. Ransomware attacks rose 25% in 2024\. ([Bitsight](https://www.bitsight.com/resources/2025-state-of-the-underground?ref=cybersecstats.com))
3. The number of ransomware leak sites increased by 53%. ([Bitsight](https://www.bitsight.com/resources/2025-state-of-the-underground?ref=cybersecstats.com))
4. Ransomware cyber insurance claims frequency dropped 3%. ([Coalition](https://web.coalitioninc.com/download-2025-cyber-claims-report.html?ref=cybersecstats.com))
5. The number of publicly disclosed victims rose 25% (Apr 2024–Mar 2025), after an 81% surge prior. ([Black Kite](https://content.blackkite.com/ebook/2025-ransomware-report/?ref=cybersecstats.com))
6. 96 ransomware groups are now active. ([Black Kite](https://content.blackkite.com/ebook/2025-ransomware-report/?ref=cybersecstats.com))
7. SMBs in the $4M–$8M range were hit most often. ([Black Kite](https://content.blackkite.com/ebook/2025-ransomware-report/?ref=cybersecstats.com))
8. Ransomware caused 67% of known third-party breaches. ([Black Kite](https://content.blackkite.com/ebook/2025-ransomware-report/?ref=cybersecstats.com))
9. Ransom payment values declined by 35%. ([Black Kite](https://content.blackkite.com/ebook/2025-ransomware-report/?ref=cybersecstats.com))

## Cybersecurity concerns

1. Only 58% of CIOs are confident in their ability to identify potential security gaps. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
2. Top concerns for CIOs regarding cybersecurity risk include: malware and ransomware (42%), data breaches (37%), AI-driven attacks (34%), and phishing (33%). ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
3. 68% say media reports of high-profile breaches have elevated cybersecurity on the C-suite agenda. ([LevelBlue](https://levelblue.com/resource-center/futures-reports/2025-levelblue-futures-report-cyber-resilience-and-business-impact?ref=cybersecstats.com))
4. 58% view external threats (like malicious actors and state-affiliated groups) as more significant than internal threats (42%). ([Cisco](https://newsroom.cisco.com/c/dam/r/newsroom/en/us/interactive/cybersecurity-readiness-index/2025/documents/2025%5FCisco%5FCybersecurity%5FReadiness%5FIndex.pdf?ref=cybersecstats.com))

## DDoS attacks

1. 50%+ teams struggle to coordinate teams during DDoS attacks. ([Corero](https://www.corero.com/lp-report-threat-intelligence-report-2025/?ref=cybersecstats.com))
2. 68% report challenges showing the ROI of DDoS protection to leadership. ([Corero](https://www.corero.com/lp-report-threat-intelligence-report-2025/?ref=cybersecstats.com))

## Cloud incidents and security trends

1. On average, organizations detect 17 cloud vulnerabilities weekly. ([Prowler](https://prowler.com/blog/cloud-security-report-2025/?ref=cybersecstats.com))
2. Teams sift through \~7,000 alerts to find one real cloud threat. ([ARMO](https://www.armosec.io/cloud-runtime-security-survey-2025/?ref=cybersecstats.com))
3. 45% report frequent false positives from cloud tools. ([ARMO](https://www.armosec.io/cloud-runtime-security-survey-2025/?ref=cybersecstats.com))
4. 63% use over five runtime cloud security tools. ([ARMO](https://www.armosec.io/cloud-runtime-security-survey-2025/?ref=cybersecstats.com))
5. \~1/3 of cloud assets are neglected, each with \~115 vulnerabilities. ([Orca Security](https://orca.security/lp/2025-state-of-cloud-security-report/?ref=cybersecstats.com))
6. 36% of organizations have at least one cloud asset with 100+ attack paths. ([Orca Security](https://orca.security/lp/2025-state-of-cloud-security-report/?ref=cybersecstats.com))
7. Top tech expected to impact cloud security in the next three years: AI/ML analytics (27%), open-source tools (17%), and automated threat response (16%). ([Prowler](https://prowler.com/blog/cloud-security-report-2025/?ref=cybersecstats.com))
8. Expected gaps (in the next 12 months): budget (45%), talent (42%), and automation (34%). ([Prowler](https://prowler.com/blog/cloud-security-report-2025/?ref=cybersecstats.com))
9. 37% failed audits due to cloud security issues in the past year. ([Prowler](https://prowler.com/blog/cloud-security-report-2025/?ref=cybersecstats.com))

## AI-driven attack data

1. AI-driven attacks now occur as frequently as phishing, placing AI firmly among the top three cybersecurity threats. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
2. 42% of executives believe AI-powered threats will happen. ([LevelBlue](https://levelblue.com/resource-center/futures-reports/2025-levelblue-futures-report-cyber-resilience-and-business-impact?ref=cybersecstats.com))
3. 59% say AI is making threats harder for employees to spot. ([LevelBlue](https://levelblue.com/resource-center/futures-reports/2025-levelblue-futures-report-cyber-resilience-and-business-impact?ref=cybersecstats.com))
4. Only 49% believe staff fully understand AI-related risks. ([Cisco](https://newsroom.cisco.com/c/dam/r/newsroom/en/us/interactive/cybersecurity-readiness-index/2025/documents/2025%5FCisco%5FCybersecurity%5FReadiness%5FIndex.pdf?ref=cybersecstats.com))

## Vulnerabilities and vulnerability management

1. 57% say automation speeds up vulnerability response. ([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))
2. 74% identify a lack of understanding of every potential source of vulnerability as their biggest challenge to effective vulnerability management. ([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))
3. 91% face delays in remediation. ([Seemplicity](https://seemplicity.io/papers/the-2025-remediation-operations-report?ref=cybersecstats.com))
4. 61% measure vulnerability remediation success by number of fixes; 54% by fewer breaches. ([Seemplicity](https://seemplicity.io/papers/the-2025-remediation-operations-report?ref=cybersecstats.com))
5. 1 in 5 organizations take 4 or more days to fix critical vulnerabilities. ([Seemplicity](https://seemplicity.io/papers/the-2025-remediation-operations-report?ref=cybersecstats.com))
6. Nearly 40% still rely on manual workflows for most of their vulnerability remediation processes. ([Seemplicity](https://seemplicity.io/papers/the-2025-remediation-operations-report?ref=cybersecstats.com))
7. Total number of software vulnerabilities rose 61% YoY in 2024.([Action1](https://www.action1.com/software-vulnerability-ratings-report-2025/?ref=cybersecstats.com))
8. Critical vulnerabilities rose by 37.1% in 2024\. ([Action1](https://www.action1.com/software-vulnerability-ratings-report-2025/?ref=cybersecstats.com))
9. Known exploited vulnerabilities surged 96%. ([Action1](https://www.action1.com/software-vulnerability-ratings-report-2025/?ref=cybersecstats.com))

## Cybersecurity budget and spending trends

1. 79% of companies are adjusting their cybersecurity budgets; 71% report increases.([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))
2. Average enterprise security budget: $24M. ([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))
3. 67% of companies now use risk/threat assessments to guide budgets, up from 53% in 2024\. ([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))
4. 30% say limited budget blocks adoption of new solutions. ([Seemplicity](https://seemplicity.io/papers/the-2025-remediation-operations-report?ref=cybersecstats.com))
5. U.S. enterprises spend \~$187K yearly on pentesting - 11% of a $1.77M average security budget. ([Pentera](https://pentera.io/resources/reports/global-state-of-pentesting-2025-survey-report/?ref=cybersecstats.com))
6. 85% of CISOs say the volume of nation-state threats influence their budget. ([Trellix](https://www.trellix.com/solutions/mind-of-the-ciso-threat-intel/?ref=cybersecstats.com))
7. Among SMBs with fewer than 50 employees, more than half allocate less than 1% of their annual budget to cybersecurity. ([CrowdStrike](https://www.crowdstrike.com/en-us/resources/reports/state-of-smb-cybersecurity-survey/?ref=cybersecstats.com))

## Security tool opinions from CIOs

1. 50% of CIOs say they've overinvested in unnecessary tools. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
2. 50% admit they're not using all features of their security tools. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
3. 50% of tech leaders lack tools that fit their business needs. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))
4. 41% of CIOs don't believe their current security investments fully meet their organization's needs. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))

## AI cybersecurity tool adoption and benefits 

1. Only 29% of executives hesitate to adopt AI due to cybersecurity ramifications. ([LevelBlue](https://levelblue.com/resource-center/futures-reports/2025-levelblue-futures-report-cyber-resilience-and-business-impact?ref=cybersecstats.com))
2. 43% of organizations use AI to anticipate and prevent attacks. ([MixMode](https://mixmode.ai/state-of-ai-in-cyber-2025/?ref=cybersecstats.com))
3. Among organizations using AI in the SOC, 57% report faster alert resolution, 55% say it frees up analyst bandwidth, 50% cite better real-time threat detection . ([MixMode](https://mixmode.ai/state-of-ai-in-cyber-2025/?ref=cybersecstats.com))
4. AI improved prioritisation of threats (56%), SOC team efficiency (51%), threat analysis speed (43%), job satisfaction (70%). ([MixMode](https://mixmode.ai/state-of-ai-in-cyber-2025/?ref=cybersecstats.com))
5. Only 11% of organizations fully trust AI for mission-critical tasks. ([Splunk](https://www.splunk.com/en%5Fus/form/state-of-security.html?ref=cybersecstats.com))
6. 46% of respondents say their organizations use AI/ML to prevent cyberattacks. ([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))
7. 70% of organizations say integrating AI tools with legacy systems is difficult. ([MixMode](https://mixmode.ai/state-of-ai-in-cyber-2025/?ref=cybersecstats.com))
8. 59% cite a lack of internal expertise to validate AI vendor claims. ([MixMode](https://mixmode.ai/state-of-ai-in-cyber-2025/?ref=cybersecstats.com))
9. Barriers to AI adoption: high implementation and maintenance costs (73%), lack of in-house expertise (64%), difficulty integrating the technology with existing systems (58%). ([FIS and Oxford Economics](https://www.fisglobal.com/the-harmony-gap?ref=cybersecstats.com#Sources-of-tension))
10. 73% of respondents report investing in AI-specific security tools, using either new budgets or reallocating existing resources. ([Thales](https://cpl.thalesgroup.com/data-threat-report?ref=cybersecstats.com))
11. Among those focused on AI security, most buy from cloud providers; nearly half turn to startups. ([Thales](https://cpl.thalesgroup.com/data-threat-report?ref=cybersecstats.com))
12. Key drivers for AI/ML adoption: efficiency (41%) and competitive edge (40%). ([Optiv](https://www.optiv.com/insights/discover/downloads/2025-cybersecurity-threat-and-risk-management-report?ref=cybersecstats.com))

## AI application usage risks and fears

1. 68% of organizations have data leakage incidents due to employees sharing sensitive data with AI tools. ([Metomic](https://www.metomic.io/resource-centre/2025-ciso-survey-insights?ref=cybersecstats.com))
2. Only 23% of organizations have implemented comprehensive AI security policies. ([Metomic](https://www.metomic.io/resource-centre/2025-ciso-survey-insights?ref=cybersecstats.com))
3. Less than 10% of enterprises have implemented data protection policies and controls for AI applications. ([Skyhigh Security](https://www.skyhighsecurity.com/lp-2025-cloud-adoption-and-risk-report.html?ref=cybersecstats.com))
4. 11% of files uploaded to AI applications include sensitive corporate content. ([Skyhigh Security](https://www.skyhighsecurity.com/lp-2025-cloud-adoption-and-risk-report.html?ref=cybersecstats.com))

## Credential security 

1. Stolen credentials are the second highest initial infection vector, making up 16% of investigations. ([Mandiant](https://cloud.google.com/security/resources/m-trends?ref=cybersecstats.com))
2. 35%+ had an account compromised due to weak passwords last year. ([FIDO Alliance](https://fidoalliance.org/wp-content/uploads/2025/04/World-Password-Day-2025-Final.pdf?ref=cybersecstats.com))
3. 1.7 billion stolen credential records were shared in underground forums. ([Fortinet](https://www.fortinet.com/resources/reports/threat-landscape-report?ref=cybersecstats.com))
4. Among the roles most vulnerable to credential theft, 28% were in Project Management, followed by Consulting (12%) and Software Development (10.7%). ([KELA](https://www.kelacyber.com/resources/research/the-infostealer-epidemic/?ref=cybersecstats.com))
5. Ransomware followed stolen credentials within 2.5 weeks on average. ([KELA](https://www.kelacyber.com/resources/research/the-infostealer-epidemic/?ref=cybersecstats.com))
6. Password cracking is 20% faster than in 2024 using consumer GPUs. ([Hive Systems](https://www.hivesystems.com/blog/are-your-passwords-in-the-green?ref=cybersecstats.com))
7. Valid credentials were used in 48.6% of initial access cases. ([eSentire](https://www.esentire.com/resources/library/how-initial-access-and-ransomware-deployment-trends-are-shifting-in-2025?ref=cybersecstats.com))
8. 76% of CIOs see credential leaks as a growing threat. ([Logicalis](https://www.us.logicalis.com/2025-CIO-Report?ref=cybersecstats.com))

## Infostealer use

1. Infostealer cases rose 31% YoY. ([eSentire](https://www.esentire.com/resources/library/how-initial-access-and-ransomware-deployment-trends-are-shifting-in-2025?ref=cybersecstats.com))
2. 35 unique infostealers detected in 2024, up from 26 in 2023\. ([eSentire](https://www.esentire.com/resources/library/how-initial-access-and-ransomware-deployment-trends-are-shifting-in-2025?ref=cybersecstats.com))
3. Infostealer activity has surged 266% in recent years. ([KELA](https://www.kelacyber.com/resources/research/the-infostealer-epidemic/?ref=cybersecstats.com))

## Social engineering trends and types

1. Callback phishing made up 16% of phishing attempts in Q1 2025\. ([VIPRE Security Group](https://vipre.com/resources/q1-2025-email-threat-report/?ref=cybersecstats.com))
2. Vishing (voice-call phishing) tactics grew by 28%. ([Zimperium](https://lp.zimperium.com/hubfs/Reports/2025%20Global%20Mobile%20Threat%20Report.pdf?ref=cybersecstats.com))
3. Smishing attacks grew by 22%. ([Zimperium](https://lp.zimperium.com/hubfs/Reports/2025%20Global%20Mobile%20Threat%20Report.pdf?ref=cybersecstats.com))
4. Over 60% of top-clicked phishing emails were related to HR and IT. ([KnowBe4](https://www.knowbe4.com/hubfs/Q1-2025%5FPhishing-Report-Infographic%5FEN.jpg?ref=cybersecstats.com))
5. 60.7% of phishing clicks mentioned an internal team. ([KnowBe4](https://www.knowbe4.com/hubfs/Q1-2025%5FPhishing-Report-Infographic%5FEN.jpg?ref=cybersecstats.com))

## BEC (and VEC) compromise

1. BEC/user account compromises rose 70% in 2024\. ([eSentire](https://www.esentire.com/resources/library/how-initial-access-and-ransomware-deployment-trends-are-shifting-in-2025?ref=cybersecstats.com))
2. 60% of cyber insurance claims stemmed from BEC and funds transfer fraud. ([Coalition](https://web.coalitioninc.com/download-2025-cyber-claims-report.html?ref=cybersecstats.com))
3. 29% of BEC cases led to funds transfer fraud. ([Coalition](https://web.coalitioninc.com/download-2025-cyber-claims-report.html?ref=cybersecstats.com))
4. BEC claim severity jumped 23%. ([Coalition](https://web.coalitioninc.com/download-2025-cyber-claims-report.html?ref=cybersecstats.com))
5. Email-based BEC attacks surged 70% YoY. ([Cofense](https://cofense.com/the-rise-of-ai-a-new-era-of-phishing-threats?ref=cybersecstats.com))
6. 72% of large enterprise employees acted on malicious vendor emails. ([Abnormal AI](https://abnormal.ai/resources/employee-engagement-vendor-email-compromise-threat-report?utm%5Fsource=businesswire&utm%5Fmedium=PR%20/%20AR&utm%5Fcontent=employee-engagement-vendor-email-compromise-threat-report))

## Post-quantum cryptography 

1. A cryptanalytically relevant quantum computer capable of breaking common public key schemes is expected by 2030\. ([Utimaco](https://utimaco.com/market-trends/2025-utimaco-pqc-readiness-report?ref=cybersecstats.com))
2. PQC migration status: 20% started, 34% plan to in 1–3 years, 21% in 3–5 years, 25% have no plans. ([Utimaco](https://utimaco.com/market-trends/2025-utimaco-pqc-readiness-report?ref=cybersecstats.com))
3. 63% prefer a hybrid approach (classical + PQC); 26% favor larger symmetric keys. ([Utimaco](https://utimaco.com/market-trends/2025-utimaco-pqc-readiness-report?ref=cybersecstats.com))
4. 95% lack a quantum computing roadmap. ([ISACA](https://www.isaca.org/quantum-pulse-poll?ref=cybersecstats.com))
5. Only 5% have a defined strategy. ([ISACA](https://www.isaca.org/quantum-pulse-poll?ref=cybersecstats.com))
6. 62% worry quantum will break current encryption; just 5% consider it a near-term priority. ([ISACA](https://www.isaca.org/quantum-pulse-poll?ref=cybersecstats.com))
7. Only 5% have implemented quantum-safe encryption. ([DigiCert](https://www.digicert.com/news/quantum-readiness-gap-a-digicert-study-on-quantum-safe-encryption?ref=cybersecstats.com))
8. 46.4% say much of their encrypted data could be at risk. ([DigiCert](https://www.digicert.com/news/quantum-readiness-gap-a-digicert-study-on-quantum-safe-encryption?ref=cybersecstats.com))
9. 63% cite future encryption compromise as the top quantum threat. ([Thales](https://cpl.thalesgroup.com/data-threat-report?ref=cybersecstats.com))